• 2 Posts
  • 106 Comments
Joined 3 years ago
cake
Cake day: June 20th, 2023

help-circle

  • keiko@fedia.ioOPtolinuxmemes@lemmy.worldOS Tier List
    link
    fedilink
    arrow-up
    2
    ·
    17 days ago

    I made a really long comment answering those questions here.

    I forgot how to properly link to comments in such a way that they will point to the comment on whichever instance is seeing them (idk how else to word that either), so I searched and found the link for your instance so it’ll be accessible to you.

    If you or anyone else understands what I’m talking about and know the answer, please remind me how to properly link stuff. <3


  • keiko@fedia.ioOPtolinuxmemes@lemmy.worldOS Tier List
    link
    fedilink
    arrow-up
    1
    ·
    17 days ago

    Maybe that’s more of an issue with android than Qubes OS, since flashing postmarketOS has absolutely no issues for me. idk. I also format usb drives and sd cards without issues. I’ll add this to my list of reasons to not bother with android, lol.



  • keiko@fedia.ioOPtolinuxmemes@lemmy.worldscripts?
    link
    fedilink
    arrow-up
    2
    ·
    17 days ago

    Person A: “chromium-based browsers have superior security” Person B: “i use firefox-based browsers exclusively” Person A: “outrageous. it’s got inferior security” Person B: “i don’t allow scripts” Person A: “javascripts aren’t a major security concern” Person B: “firefox with scripts denied is more secure than chromium with scripts allowed” Person A: “javascripts are required for the modern web” Person B: “untrue, as evidenced by the fact that i access the modern web with scripts denied”

    checkmate ♟️


  • keiko@fedia.ioOPtolinuxmemes@lemmy.worldscripts?
    link
    fedilink
    arrow-up
    2
    ·
    17 days ago

    @cley_faye@lemmy.world Bugs exists. But JavaScript running in the browser have, theoretically, little access to anything. […]

    The risk of allowing JavaScript on a website is more tied to the site data, or tracking. […]

    It doesn’t mean every site needs JavaScript, but having this enabled by default is not that big of a security risk for the system. […]

    This reminds me of an interesting phenomenon: Some security-oriented people praise the security of the surveillance-advertising corporation’s browser engine (chromium), while proclaiming that gecko-based browsers (firefox) are unusable due to inferior security. Yet the main security threat I see is that fucking surveillance-advertising corporation which spreads unvetted and often malicious ads around the web without a care in the world.




  • keiko@fedia.ioOPtolinuxmemes@lemmy.worldscripts?
    link
    fedilink
    arrow-up
    1
    ·
    17 days ago

    @chonglibloodsport@lemmy.world Most websites from when I was a kid did not need JavaScript. Heck, they didn’t even have any JavaScript on many of them! No CSS either, just HTML and images (which were very slow to load on dialup).

    Simpler times




  • keiko@fedia.ioOPtolinuxmemes@lemmy.worldscripts?
    link
    fedilink
    arrow-up
    2
    ·
    17 days ago

    @rtxn@lemmy.world Sure, it’s bonkers for you, but an alternative browser that can’t immediately show a website that works perfectly well in Chrome wouldn’t get much of a user base.

    I think the main point is about what is default. People have been and continue to be trained by the defaults (tyranny of the default), and in this case they are trained to expect sites to utilize scripts, which is (imo) unhealthy for society. It would be better if scripts were denied by default and the user could allow them per-site with a single click, similar to how sites will ask the user to allow notifications or location services which the user is able to allow or deny.

    Sure, most users simply allow everything. But kids are curious and would be more likely to read and understand such things if presented with the options, and that could translate into a more-informed adult population with better security practices. And overall, I think that’d make for a healthier and happier society which doesn’t continue to crumble into worse and worse outcomes.

    If the default were to deny scripts, sites would have to at least look somewhat presentable without the scripts, so as to ask the user to enable them. And my hope is that people would prefer the sites that don’t pester them for permissions.


  • keiko@fedia.ioOPtolinuxmemes@lemmy.worldscripts?
    link
    fedilink
    arrow-up
    0
    ·
    17 days ago

    @OwOarchist@pawb.social Honestly, it’s bonkers that the standard, default approach for all mainstream browsers is to let every random website in the world run any arbitrary code it wants on your computer.

    This, this, 1000 times this! That is exactly how I feel and was hoping to convey.

    @OwOarchist@pawb.social Yeah, they usually attempt to sandbox it, but still. Sometimes sandboxes can be escaped. And sometimes the code can do significant harm while still inside its sandbox.

    Yes, defense-in-depth includes minimizing threats rather than simply relying on protections. It shouldn’t be necessary to lower one’s shields constantly, and it’s better to avoid doing so if possible, from a security & privacy perspective.


  • keiko@fedia.ioOPtolinuxmemes@lemmy.worldscripts?
    link
    fedilink
    arrow-up
    1
    ·
    17 days ago

    Okay, I’m going to reply to this message with my responses to various quoted comments from the big chain of comments which I can’t directly access from this instance, due to defederation with certain instances. I’m not going to respond to literally every message, but I hope you all know that I do appreciate you for participating in this thread and being part of a really fun and interesting chain.

    Thanks for all the comments and sorry for not responding until now. Since I can’t upvote any of the comments in that chain, to all of you I provide lots of hearts: 🩷🩷🩷🩷🩷🩷🩷🩷🩷🩷🩷🩷🩷🩷🩷🩷🩷🩷🩷🩷🩷🩷🩷🩷🩷🩷🩷🩷🩷🩷


  • keiko@fedia.ioOPtolinuxmemes@lemmy.worldscripts?
    link
    fedilink
    arrow-up
    2
    ·
    17 days ago

    Thanks. Yeah, it’s OpenDyslexicAlta Bold. It felt like a good option for a meme font that was kinda different and maybe easy enough to read to make it useful too.

    @Digit@lemmy.today This, I applaud. I aim similarly.

    tyvm for the appreciation. and since I can’t send upvotes directly, you get extra hearts: 🩷🩷🩷🩷🩷


  • keiko@fedia.ioOPtolinuxmemes@lemmy.worldscripts?
    link
    fedilink
    arrow-up
    0
    ·
    17 days ago

    practically no one is building websites to work without JavaScript. I think that sucks

    I legitimately believe that most websites suck, and that is one of the reasons. If I enable javascript. I still find that the vast majority of sites suck.

    I cannot change it by just avoiding most websites in defiance.

    We cannot change much in this world. I don’t believe that I’m changing things by avoiding these sites which I don’t like. I can hope that more people will realize the same things I do and join me in avoiding such sites, but without numbers there’s nothing to be gained except personal comfort in the moment.

    I don’t know what websites you’re using that still work without JavaScript, but they’re in the minority from what I can tell.

    Well yeah, cuz (imo) most sites suck, lol. But even though they’re in the minority (like me, lol), there are lots of good sites which work very well without javascripts, like distrowatch, duckduckgo, feditrends, invidious, lemmy (for the most part), librey, mbin, redlib, rimgo, searxng, wikipedia, and lots of smaller niche sites. Lots of news sites are also pretty accessible, especially the ones that work with firefox reader mode. So, that list covers multiple options for search engines, fediverse platforms, mainstream social media frontends, wikipedia (and various other wikis on totally different sites), and lots of news & informational sites.

    Some sites that don’t work quite as well are able to be fixed by simply switching from from “Basic Page Style” to “No Page Style” with Alt+v Y N (Menu -> View -> Page Style -> No Page Style). Lots of sites which appear totally blank can be fixed with that method. Granted, they don’t look so good, but the information is accessible. But that’s an example of a not-so-good site which is helped by disallowing javascipts and correcting the page. The truly good sites don’t require fucking with them like that.

    So anyway, yeah. idk. I don’t see the issue. The sites which don’t work are the sites I have no interest in using. Allowing javascripts doesn’t tend to make them better in my view. And I think the stuff that legitimately needs scripts are better accessed as standalone apps (like matrix and other instant messengers which support end-to-end encryption). I think it’s better to use FOSS apps which have been reviewed by OS maintainers and others than to blindly allow sites to execute scripts through a browser.

    But again, this is all just my perspective, my own experiences and opinions shaped from them. We each walk our own paths and have our own wants and needs, along with our own likes and dislikes. I just hope I’m able to be better understood by others who otherwise would have no idea why I and some others have chosen this path for ourselves.

    (also, sorry if my walls of text are annoying.)


  • keiko@fedia.ioOPtolinuxmemes@lemmy.worldscripts?
    link
    fedilink
    arrow-up
    1
    ·
    17 days ago

    Those are websites I don’t want to use. As I’ve said in other comments, sites which break without javascript are what I consider broken sites. And I don’t like to use broken sites.

    Almost all websites stop working

    Another way of saying this: Most websites are broken and not worth accessing.

    Like, have you seen the web? Most sites suck. lol. The good ones don’t bully/coerce me to change my behaviour.


  • keiko@fedia.ioOPtolinuxmemes@lemmy.worldscripts?
    link
    fedilink
    arrow-up
    2
    ·
    17 days ago

    Just a matter of time before a vanilla smartphone is as much of a requirement as a bank account itself.

    That’s a really sad thing for a people to allow to be done to them. Like, idk about other people, but I’m never buying another apple or google product for the rest of my life. I think it’d be really weird if that became a death sentence, in which people like me could no longer access their own money to pay for necessities like food.

    Yeah I was honestly just making a joke about the chic thing.

    Oh I know. I liked that it gave me an excuse to say that stuff in response though, and I was uncertain if I should make such a serious response to a joke. But I went for it cuz why not, lol.

    I really love your passion for this though lol. And I agree with the cause. Glad you stuck it out.

    tyvm for the appreciation 🩷


  • keiko@fedia.ioOPtolinuxmemes@lemmy.worldOS Tier List
    link
    fedilink
    arrow-up
    0
    ·
    17 days ago
    • With a powerful enough processor and enough RAM, even modern games should be playable, excluding the ones requiring anti-cheat stuff i guess (I’m not a gamer so idk).

    • Video-conferencing is very much possible with things like matrix, as is screen-sharing (though that would be limited to the specific qube doing the screen-sharing, and you wouldn’t want that in dom0 for obvious reasons).

    • Is android development not possible in a vm? idk why it wouldn’t be. And idk about flashing ROMs but I was able to flash postmarketOS onto a Pinephone without issues.

    • 3D CAD stuff would likely need a powerful processor and lots of RAM allocated to the specific qube doing the work, but it should be doable.

    • Video playback is perfectly fine as it is, no dropped frames at all. And I don’t even bother giving any qubes more than the default 4GB RAM.


  • keiko@fedia.ioOPtolinuxmemes@lemmy.worldscripts?
    link
    fedilink
    arrow-up
    0
    ·
    17 days ago

    Nah it’s really not convenient when it comes to things like banking apps that get fussy about how customised your phone is.

    I don’t trust banking apps, and I have absolutely no desire to install software that is so controlling.

    Yeah you’re basically breaking everything.

    Sites which are non-functional without javascript are already “broken” in my view. So I simply don’t use them.

    I did this before it was chic

    Is it though? Most people tend to try to talk me out of it. There seem to be lots of people who view it as unacceptable, and I’ve actually been bullied about it on a few occasions by people whom I’d thought were friends. I’ve learned to be defensive as a result, but that can come across the wrong way sometimes. I’d certainly rather it be chic than what it currently is, though I’m glad the comments in this thread have remained civil and generally positive.

    (I spent a long time typing that last paragraph and debating about whether or not to include it in this comment. Hopefully it’s fine.)